in reply to Re: Is there a Perl authentication and authorisation framework for CGI web application?
in thread Is there a Perl authentication and authorisation framework for CGI web application?

Password recovery means passwords are stored in a readable fashion and this is a worst practice, so it’s just as well it doesn’t do it. :P

  • Comment on Re^2: Is there a Perl authentication and authorisation framework for CGI web application?

Replies are listed 'Best First'.
Re^3: Is there a Perl authentication and authorisation framework for CGI web application?
by soonix (Chancellor) on Jan 23, 2017 at 18:56 UTC
    The "uninitiated" might also call a proper temporary one-time access token which enables you to change your password, "password recovery".

      …Grumble…for the illiterate, maybe. Recovery means just that. Reset is something else. I understand your point but we are professionals and must be held to a proper standard. This isn’t PHPmonks, for the love of cross-eyed Saint Sebastian!

        "This isn’t PHPmonks, for the love of..."

        It's not often I get a good laugh and a smile in the middle of a Monday afternoon, so that was a nice surprise :)

        well, I thought about trying to DWI(SH)M ("do what I (should have) mean(t)"), or RWHM ("read what he meant"), but I admit that is indeed drifting towards PHP.

        But the mentioned module, by the look at its source, doesn't insist on cleartext (or decodable) passwords